CVE-2016-5145
07.08.2016, 19:59
Blink, as used in Google Chrome before 52.0.2743.116, does not ensure that a taint property is preserved after a structure-clone operation on an ImageBitmap object derived from a cross-origin image, which allows remote attackers to bypass the Same Origin Policy via crafted JavaScript code.Enginsight
Vendor | Product | Version |
---|---|---|
chrome | 𝑥 ≤ 52.0.2743.82 |
𝑥
= Vulnerable software versions

Ubuntu Releases
Ubuntu Product | |||||||||
---|---|---|---|---|---|---|---|---|---|
chromium-browser |
| ||||||||
oxide-qt |
|
Common Weakness Enumeration
References